Hi All,
I'm trying to setup:
Fortigate 40F v.7.2.11 as VPN IPSec server.
Apple iOS as VPN IPsec client, the built-in client.
I'm still trying to use IKE1 to do not go with certificates for now.
The problem what I see is:
Before I'll provide my technical setup, I just want to ensure, it is even possible to have such scenario that Split Tunnel will be disabled and all traffic will go over Fortigate (IPv4+IPv6, even only IPv4) using built-in Apple iOS VPN client?
Have anyone done that?
In theory it should be, because SSLVPN using Fortigate client on iOS (IPv4 only of course) is able to do so, but as SSLVPN is going away, I'm looking for alternative solution without any entra software and started wiping SSLVPN configuration.
My iOS is not MDM managed, I'm doing it for my private usage.
Thanks,
Hi Drixter,
If you use dialup vpn type on your firewall, you don't need to use FortiClient on iPad. You can configure ipsec on the settings menu.
Configure the iOS device.
1.In the iOS device, go to Settings > General > VPN and select Add VPN Configuration.
2.Set the Type to IPsec and enter a Description. Set the Server to the FortiGate's Internet-facing interface, and enter the username in Account. Enter the user password, the preshared IPsec VPN secret, then select Done.
3.Ensure that the IPsec VPN configuration is highlighted (indicated by a checkmark), and select the Not Connected button. The IPsec VPN connects with the user's credentials and secret. The status changes to Connected, and a VPN icon appears at the top of the screen.
4.Keep the default values for the Subnet Mask, DNS Server, and Enable IPv4 Split tunnel.
If you have found a solution, please like and accept it to make it easily accessible to others.
Regards,
Aman
Hi Kaman,
Thanks for that but the main question is, will this work without "Split tunnel", so the all traffic will be routed over Fortigate?
Thanks,
User | Count |
---|---|
2539 | |
1352 | |
795 | |
642 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.